Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 16:54:03.647 00:06:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 16:59:01.022 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:33744 10 6452 1 2025-11-20 17:00:01.379 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36808 10 6452 1 2025-11-20 17:00:23.790 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:00:23.714 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:00:23.887 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:00:23.960 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:00:23.971 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:01:01.780 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54326 10 6452 1 2025-11-20 16:57:03.646 00:06:00.300 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 17:02:02.185 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55156 10 6452 1 2025-11-20 17:03:02.548 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:47122 10 6452 1 2025-11-20 17:04:02.950 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:36366 10 6452 1 2025-11-20 17:05:03.323 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45364 10 6452 1 2025-11-20 17:05:24.204 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:05:24.125 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:05:24.125 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:05:23.947 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:05:24.121 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:01:03.651 00:06:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 17:06:03.730 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:57208 10 6452 1 2025-11-20 17:07:04.136 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52036 10 6452 1 2025-11-20 17:08:04.542 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43878 10 6452 1 2025-11-20 17:04:03.650 00:06:00.298 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 17:09:04.955 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39212 10 6452 1 2025-11-20 17:10:05.363 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42830 10 6452 1 2025-11-20 17:10:24.123 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:10:24.198 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:10:24.171 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:10:24.131 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:10:24.214 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:11:05.770 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:48854 10 6452 1 2025-11-20 17:12:06.200 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49154 10 6452 1 2025-11-20 17:08:03.651 00:06:00.294 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 17:13:06.560 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:44240 10 6452 1 2025-11-20 17:14:06.933 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:46828 10 6452 1 2025-11-20 17:15:07.305 00:00:10.798 TCP 1.101.0.1:3000 -> 23.104.0.1:54092 10 6452 1 2025-11-20 17:15:24.362 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:15:24.275 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:15:24.061 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:15:24.364 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:15:24.449 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:11:03.650 00:06:00.300 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 17:16:08.147 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36022 10 6452 1 2025-11-20 17:17:08.555 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:34146 10 6452 1 2025-11-20 17:18:08.955 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50166 10 6452 1 2025-11-20 17:19:09.365 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57526 10 6452 1 2025-11-20 17:15:03.653 00:06:00.295 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 17:20:24.332 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:20:24.416 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:20:24.364 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:20:09.770 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59052 10 6452 1 2025-11-20 17:20:24.418 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:20:24.501 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:21:10.184 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58130 10 6452 1 2025-11-20 17:22:10.583 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42980 10 6452 1 2025-11-20 17:18:03.652 00:06:00.300 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 17:23:10.939 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:53262 10 6452 1 2025-11-20 17:24:11.358 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37668 10 6452 1 2025-11-20 17:25:24.668 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:25:11.806 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43744 10 6452 1 2025-11-20 17:25:24.663 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:25:24.110 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:25:24.764 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:25:24.848 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:26:12.218 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48852 10 6452 1 2025-11-20 17:22:03.659 00:06:00.290 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 17:27:12.619 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37448 10 6452 1 2025-11-20 17:28:13.025 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:52758 10 6452 1 2025-11-20 17:29:13.388 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54264 10 6452 1 2025-11-20 17:25:03.658 00:06:00.304 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 17:30:24.593 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:30:24.414 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:30:24.558 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:30:24.588 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:30:13.791 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53106 10 6452 1 2025-11-20 17:30:24.672 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:31:14.194 00:00:10.578 TCP 1.101.0.1:3000 -> 23.104.0.1:33702 10 6452 1 2025-11-20 17:32:14.806 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53072 10 6452 1 2025-11-20 17:33:15.223 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:52732 10 6452 1 2025-11-20 17:29:03.661 00:06:00.299 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 17:34:15.624 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36950 10 6452 1 2025-11-20 17:35:24.711 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:35:24.516 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:35:24.680 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:35:24.710 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:35:24.794 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:35:16.032 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35174 10 6452 1 2025-11-20 17:36:16.439 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60284 10 6452 1 2025-11-20 17:32:03.659 00:06:00.303 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 17:37:16.841 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:49486 10 6452 1 2025-11-20 17:38:17.225 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55754 10 6452 1 2025-11-20 17:39:17.593 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53434 10 6452 1 2025-11-20 17:40:24.938 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:40:24.694 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:40:24.851 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:40:24.603 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:40:24.854 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:40:18.002 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50106 10 6452 1 2025-11-20 17:36:03.662 00:06:00.300 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 17:41:18.404 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36586 10 6452 1 2025-11-20 17:42:18.800 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:53702 10 6452 1 2025-11-20 17:43:19.194 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55508 10 6452 1 2025-11-20 17:39:03.660 00:06:00.304 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 17:44:19.593 00:00:18.349 TCP 1.101.0.1:3000 -> 23.104.0.1:42312 10 6452 1 2025-11-20 17:45:24.864 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:45:24.736 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:45:24.791 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:45:24.864 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:45:24.873 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:45:27.980 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43368 10 6452 1 2025-11-20 17:46:28.399 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42114 10 6452 1 2025-11-20 17:47:28.797 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37410 10 6452 1 2025-11-20 17:43:03.665 00:06:00.297 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 17:48:29.205 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49064 10 6452 1 2025-11-20 17:49:29.607 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:55326 10 6452 1 2025-11-20 17:50:26.016 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:50:25.974 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:50:25.749 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:50:25.361 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:50:25.933 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:50:29.977 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56952 10 6452 1 2025-11-20 17:46:03.663 00:06:00.304 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 17:51:30.382 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47598 10 6452 1 2025-11-20 17:52:30.782 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38292 10 6452 1 2025-11-20 17:53:31.188 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40540 10 6452 1 2025-11-20 17:54:31.593 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:33144 10 6452 1 2025-11-20 17:50:03.667 00:06:00.300 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-20 17:55:24.897 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 17:55:25.200 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-20 17:55:25.197 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 17:55:25.051 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:55:25.116 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-20 17:55:32.023 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44612 10 6452 1 2025-11-20 17:56:32.434 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37766 12 6556 1 2025-11-20 17:57:32.841 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:56746 10 6452 1 2025-11-20 17:53:03.666 00:06:00.306 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-20 17:58:33.242 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:52680 10 6452 1 Summary: total flows: 138, total bytes: 417842, total packets: 1034, avg bps: 857, avg pps: 0, avg bpp: 404 Time window: 2025-11-20 16:54:03 - 2025-11-20 17:59:03 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0045s User: 0.0000s Wall: 0.0015s flows/second: 89544.2 Runtime: 0.0016s